Privacy Policy

Last Updated: 24-1-2026

1. Introduction

Welcome to Contenvo (“we,” “our,” or “us”). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your data when you visit our website (contenvo.com) or use our application (app.contenvo.com).

 

Contenvo is a company registered in the Netherlands. We process data in compliance with the General Data Protection Regulation (GDPR/AVG) and other applicable privacy laws.

 

Data Controller Contact Information:

  • Company Name: Contenvo

  • Chamber of Commerce (KvK) Number: 98682172

  • Address: Schutsboomstraat 78, 5374CD Schaijk Netherlands

  • Email: info@contenvo.com

2. Our Role: Controller vs. Processor

To understand your rights, it is important to understand our role in handling your data:

 

  • We act as the Data Controller for your account information (e.g., your name, email, billing details, and login credentials). We decide how and why this data is processed to provide you with our service.

  • We act as the Data Processor for the content you generate or the website data you connect to our platform (e.g., the blog posts we generate for you, the insights we pull from your site). We process this data solely on your behalf and according to your instructions.

3. Data We Collect

A. Information You Provide to Us

  • Account Registration: When you sign up for Contenvo (Free, Pro, Pro+, or Agency), we collect your email address, name, and password.

  • Billing Information: If you purchase a subscription, our payment processor (Stripe) collects and processes your payment details. We do not store full credit card numbers on our servers.

  • Website Integration Data: To function, our platform requires an API Key or connection token to your website. We store this securely to push generated posts to your site and retrieve insights.

  • Communications: If you contact support or sign up for our newsletter, we collect your email and the content of your messages.

B. Information Collected Automatically

  • Usage Data: We collect information on how you access and use the Service (e.g., pages visited, time spent, device type, browser type).

  • Cookies & Tracking: We use cookies to track activity on our Service.

    • Google Analytics (GA4): To analyze traffic and user behavior.

    • Hotjar: To understand user experience through heatmaps (marketing site only).

4. How We Use Your Data & Legal Basis

PurposeData TypeLegal Basis
To Provide the Service (Creating accounts, generating posts, pushing content via API)Account Data, API KeysPerformance of Contract
Billing & PaymentsFinancial DataPerformance of Contract
Customer SupportContact DataLegitimate Interest
Marketing NewsletterEmail AddressConsent (You can opt-out anytime)
Analytics & ImprovementsUsage Data (Cookies)Consent (via Cookie Banner)
Legal Compliance (Tax, Accounting)Transaction DataLegal Obligation

5. Third-Party Service Providers (Sub-Processors)

We share data with trusted third-party providers to run our service. These providers are bound by confidentiality agreements and Data Processing Agreements (DPAs).

  • Hosting & Infrastructure: Hetzner (Hosting the app and database).

  • Payment Processing: Stripe (Processing payments).

  • Email Marketing: MailerLite (Sending newsletters and updates).

  • Analytics: Google Analytics (Traffic analysis) and Hotjar (User behavior).

  • AI Models: OpenAI (We send your prompts to these providers to generate content. We do not use your personal data to train their models).

6. International Data Transfers

We are based in the Netherlands (EEA). However, some of our service providers (like Stripe or Google) may process data in the United States.

 

When data is transferred outside the European Economic Area (EEA), we ensure it is protected through:

 

  • Adequacy Decisions: Transferring to countries deemed “adequate” by the EU Commission.

  • Standard Contractual Clauses (SCCs): Legal contracts approved by the EU Commission that guarantee data protection.

7. Data Security

We take the security of your data—especially your API Keys—seriously.

  • Encryption: We use SSL/TLS encryption for data in transit. API keys and sensitive tokens are encrypted at rest using industry-standard encryption (e.g., AES-256).

  • Access Control: Access to personal data is restricted to employees and contractors who need it to perform their job functions.

8. Data Retention

We retain your personal data only for as long as necessary:

  • Account Data: Stored as long as your account is active. If you delete your account, we delete your personal data within 30 days, unless required by law (e.g., tax laws require us to keep invoice data for 7 years).

  • Generated Content: We may retain generated drafts for a limited time for your convenience, but you are the owner of this content.

9. Your Rights (GDPR)

If you are located in the EEA, you have the following rights:

  • Right to Access: Request a copy of the personal data we hold about you.

  • Right to Rectification: Correct inaccurate data.

  • Right to Erasure (“Right to be Forgotten”): Request that we delete your data.

  • Right to Restriction: Request we pause processing your data.

  • Right to Portability: Request your data in a structured, machine-readable format.

  • Right to Object: Object to our processing of your data (e.g., for marketing).

 

To exercise these rights, please contact us at info@contenvo.com.

10. Complaints

If you believe we have infringed your rights, we encourage you to contact us first. You also have the right to lodge a complaint with the Dutch Supervisory Authority:

Table of Contents